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DETAILED ACTION 

EXAMINER'S AMENDMENT 

1 . An examiner's amendment to the record appears below. Should the changes 
and/or additions be unacceptable to applicant, an amendment may be filed as provided 
by 37 CFR 1 .312. To ensure consideration of such an amendment, it MUST be 
submitted no later than the payment of the issue fee. 

Authorization for this examiner's amendment was given in a telephone interview 
with Christopher McKenna on December 21, 2004. 

The application has been amended as follows: 

In the specification, on page 1, lines 9-10, delete -under attorney docket no. 
E00378.70181/JHM/DPM— and replace with "as U.S. Patent Application Serial Number 
10/071,228" 

35. (As Amended) A method of controlling network resource usage by a user at a 
network entry device of the communications network that serves as the user's entry 
point to the communications network, wherein the user has an assigned role with 
respect to the communications network, and the assigned role is associated with one or 
more packet rules, each packet rule including a condition and action to be taken if a 
packet received at the network entry device satisfies the condition, the method 
comprising acts of: 



Application/Control Number: 10/071,873 Page 3 

Art Unit: 2131 

(A) receiving a packet including identification information of the user from a 
device of the user at a port module of the network entry device before using, bvthe 
user, any of the network resources beyond the port module of the network entry 
device : 

(B) determining the assigned role of the user based on the identification 
information; and 

(C) configuring the port module of the network entry device with the one or 
more packet rules associated with the assigned role of the user to control 
usage, by the user, of any of the network resources beyond the port module of the 
network entry device . 

40. (As Amended) A system for controlling network resource usage by a user at a 
network entry device of the communications network that serves as the user's entry 
point to the communications network, wherein the user has an assigned role with 
respect to the communications network, and the assigned role is associated with one or 
more packet rules, each packet rule including a condition and action to be taken if a 
packet received at the network entry device satisfies the condition, the system 
comprising: 

a port module of the network entry device, the port module including a 
physical port to receive a packet including identification information of the user 
from a device of the user before using, bv the user, any of the network resources 
beyond the port module of the network entry device and port configuration logic to 
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configure the port module with the one or more packet rules associated with the 
assigned role of the user to control usage, by the user, of any of the network resources 
beyond the port module of the network entry device : and 

an authentication module to determine the assigned role of the user based 
on the identification information. 

45. (As Amended) A system for controlling usage of network resources of a 
communications network by a user at a network entry device of the communications 
network that serves as the user's entry point to the communications network, wherein 
the user has an assigned role with respect to the communications network, and the 
assigned role is associated with one or more packet rules, each packet rule including a 
condition and action to be taken if a packet received at the network entry device 
satisfies the condition, the system comprising: 

a port module of the network entry device, the port module including a 
physical port to receive a packet including identification information of the user 
from a device of the user before using, bv the user, any of the network resources 
beyond the port module of the network entry device and port configuration logic to 
configure the port module with the one or more packet rules associated with the 
assigned role of the user to control usage, bv the user, of any of the network resources 
beyond the port module of the network entry device : and ' * 

means for determining the assigned role of the user based on the identification 
information. 
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46. (As Amended) A computer program product, comprising: 
a computer-readable medium; and 

computer-readable information stored on the computer-readable medium that 
define instructions that, as a result of being executed by a computer, instruct the 
computer to perform a process of controlling network resource usage by a user at a 
network entry device of the communications network that serves as the user's entry 
point to the communications network, wherein the user has an assigned role with 
respect to the communications network, and the assigned role is associated with one or 
more packet rules, each packet rule including a condition and action to be taken if a 
packet received at the network entry device satisfies the condition, the process 
comprising acts of: 

(A) receiving a packet including identification information of the user from a 
device of the user at a port module of a network entry device before using, bv the user, 
any of the network resources beyond the port module of the network device : 

(B) determining the assigned role of the user based on the identification 
information; and 

(C) configuring the port module with the one or more packet rules associated with 
the assigned role of the user to control usage, bv the user, of any of the network 
resources beyond the port module of the network entry device . 
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Allowable Subject Matter 

2. The following is an examiner's statement of reasons for allowance: 

As per claims 1 ,17,33, and 34, it was not found to be taught in the prior art of 
configuring a port module with packet rules corresponding to the identity of a user and 
before using, by the user, any of the network resources beyond the network entry 
device, applying the packet rules to the received packet to control usage, by the user, of 
any of the network resources beyond the network entry device. 

As per claims 35,40,45, and 46, it was not found to be taught in the prior art of 
configuring a port module with packet rules corresponding to the identity of a user and 
before using, by the user, any of the network resources beyond the network entry 
device, applying the packet rules to the received packet to control usage, by the user, of 
any of the network resources beyond the port module of the network entry device. 

Any comments considered necessary by applicant must be submitted no later 
than the payment of the issue fee and, to avoid processing delays, should preferably 
accompany the issue fee. Such submissions should be clearly labeled "Comments on 
Statement of Reasons for Allowance." 

Conclusion 

Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Christopher A. Revak whose telephone number is 571- 
272-3794. The examiner can normally be reached on Monday-Friday, 6:30am-4:00pm. 
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If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Ayaz Sheikh can be reached on 571-272-3795. The fax phone number for 
the organization where this application or proceeding is assigned is 703-872-9306. 

Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status information for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). 





